Juniors CTF 2016 :: Southern Cross

John Hammond · Intermediate ·🔐 Cybersecurity ·9y ago

Key Takeaways

Completes a southern cross challenge in Juniors CTF 2016

Full Transcript

Hey, what's up everybody? My name is John Hammond. Welcome back to another YouTube video looking at the Junior CTF uh capture the flag competition that was going on last week. Um another challenge called Southern Cross uh crypto challenge. Um 300 points. I can show this one off. Um so they showcase this Confederacy cipher disc. um which seemingly is a disc that has a specific key that you can encode phrases with just like classic cryptography. Um so the challenge here is that we encrypted the phrase. Here it is. Now I'll encode a famous story and you'll try to decode it. Uh it's very interesting to read the whole story over it. So this link these ellipses is actually a link to a cipher text you can download. So it's just a big text file. So go ahead and download that. Um I'll open it. So, we have it and it's just words. Turn off word rap. Can I do that in Jedit? Wow, Jedit sucks. Whatever. Oh, I closed it. That was dumb. Regardless, there's this JavaScript thing that allows you to like turn their version of the thing like left and right. I don't know if they actually like wanted you to do the challenge this way or probably I'm sure it was just a red herring because honestly they don't do that. That sucks and stupid. Um but you get that cipher text. So the idea is to decode it. Um so what I want to do is I want to look up this Confederacy cipher disc because I'm curious like okay what is that? Does it have any like easy online things? And I Google it, do a little bit of research. So apparently obviously a mechanical wheel, mechanical disc, um created for the Confederate stuff in history and things. Um but it's regardless it's based on the veneer cipher. So okay, cool. Um I know about the veneer cipher. I don't know how it works, but I mean there's totally a bunch of veneer cipher solvers all over the internet. So uh the one that I use almost constantly whenever I find a vine cipher is the the geocaching profile one. So, uh, let me get that cipher text one more time. I think it's Let's download it again. Probably sounded really weird in the mic. All right, so we can paste this encrypted text in there and it's a big disgusting story. Um, and I say, I don't know what the shift key is, so no, please try and determine it and figure it out for me. And I just tell you, code break and this nice online tool does it for me. I've seen like some stuff with feather duster which is a cool module and stuff for cryptography. Not okay not an actual feather duster but feather duster get an automated modular cryp analysis tool which is super cool. Um and I think it has some veneer some veneer cipher stuff. Um and I've seen others to like some other Python code to break veneers but they even have some stuff in their tests and examples. Um yeah, veneer and test break veneer. Yeah, veneer cipher text and and stuff like that. Um but this online one does it. Okay, so when I have internet, I'm fine with using this. So they find that this key is supposedly Boloulevard because it's Boulevard repeated over and over and over again. And that does get some plain text. I'll try and zoom in here. This is probably hard for you to read. uh 20 miles west of Tuxen, the Sunsets Express, etc. So, this is English, so that looks good to me. Um, at first glance, it would make sense to try and submit the key as the actual flag. As usual, that is the wrong idea you should have for the CTF. That didn't work. That is not the flag. Um, they say very cryptically and discreet in the challenge prompt, don't forget to reach the end of the text. The ending is greatly important. So, uh, again, a complete guess, a complete a shot in the dark that I took, but if you scroll through to literally the very end of the message, um, there is a notion here that says Bolivar cannot carry double. And because I just saw Bolivar, because I saw the key, I'm like, "Oh, I wonder if that is it. I wonder if that's the flag." And I copied that and pasted it, and that was the flag. So, again, no real notion. I mean, I don't know if uh he will settle at 185 said Dodson. Uh Boulevard cannot carry double. Maybe maybe maybe I should have maybe I'm wrong. You know, maybe there should have been more hints and more clues that I completely was blind to, but uh I submitted that and got the flag. So, that's the Southern Cross challenge for the junior CTF. Um this Confederacy cipher disc, which behind the scenes is just a veneer cipher, which isn't too difficult with an online cracker. And if you wanted to, I'm sure you can find some stuff in Python or work with Feather Duster to uh do something more automated that you don't need an online crutch for. But that's it. So, thanks for watching, guys. Hope you enjoyed them. And I'll showcase some of the other challenges real real soon. Are you

Original Description

If you would like to support me, please like, comment & subscribe, and check me out on Patreon: https://patreon.com/johnhammond010 E-mail: johnhammond010@gmail.com PayPal: http://paypal.me/johnhammond010 GitHub: https://github.com/JohnHammond Site: http://www.johnhammond.org Twitter: https://twitter.com/_johnhammond
Watch on YouTube ↗ (saves to browser)
Sign in to unlock AI tutor explanation · ⚡30

Playlist

Uploads from John Hammond · John Hammond · 49 of 60

1 Code Commentaries? PHP to JavaScript in Bash and PHP!
Code Commentaries? PHP to JavaScript in Bash and PHP!
John Hammond
2 Tutorials? MySQL connection with PHP and Bash!
Tutorials? MySQL connection with PHP and Bash!
John Hammond
3 Variable Naming in Python! Happy Birthday, Linux! Nokia N900!
Variable Naming in Python! Happy Birthday, Linux! Nokia N900!
John Hammond
4 JavaScript Splits The URL!
JavaScript Splits The URL!
John Hammond
5 HTML Tables in Python!
HTML Tables in Python!
John Hammond
6 HTML, Net Shares, GML!
HTML, Net Shares, GML!
John Hammond
7 Python 08 Programming Style and Comments
Python 08 Programming Style and Comments
John Hammond
8 Python 26 Object Oriented Programming
Python 26 Object Oriented Programming
John Hammond
9 75 Python Tutorials, Out Now!
75 Python Tutorials, Out Now!
John Hammond
10 Batch 14 Mathematical Expressions
Batch 14 Mathematical Expressions
John Hammond
11 Batch 85 Array Append
Batch 85 Array Append
John Hammond
12 Batch 86 Array Count
Batch 86 Array Count
John Hammond
13 Batch 87 Array Index
Batch 87 Array Index
John Hammond
14 Batch 88 Array Insert
Batch 88 Array Insert
John Hammond
15 Batch 89 Array Remove
Batch 89 Array Remove
John Hammond
16 Batch 90 Array Reverse
Batch 90 Array Reverse
John Hammond
17 Python [colorama] 00 Installing on Linux
Python [colorama] 00 Installing on Linux
John Hammond
18 Python [colorama] 09 Cursor Position
Python [colorama] 09 Cursor Position
John Hammond
19 Python [hashlib] 02 Algorithms
Python [hashlib] 02 Algorithms
John Hammond
20 Python 00 Installing IDLE on Linux
Python 00 Installing IDLE on Linux
John Hammond
21 Python [pygame] 11 Rectangular Collision Detection
Python [pygame] 11 Rectangular Collision Detection
John Hammond
22 Python [pygame] 12 Platforming Rectangular Collision Resolution
Python [pygame] 12 Platforming Rectangular Collision Resolution
John Hammond
23 Python [XML-RPC] 01 Research
Python [XML-RPC] 01 Research
John Hammond
24 Python [pyenchant] 03 Personal Word Lists
Python [pyenchant] 03 Personal Word Lists
John Hammond
25 FancyURLopener Authentication and User-Agent [urllib] 03
FancyURLopener Authentication and User-Agent [urllib] 03
John Hammond
26 Python 04: PEP8 Coding
Python 04: PEP8 Coding
John Hammond
27 Python Challenge! 17 COOKIES
Python Challenge! 17 COOKIES
John Hammond
28 Google CTF 2016: Ernst Echidna
Google CTF 2016: Ernst Echidna
John Hammond
29 Google CTF 2016: Spotted Quoll
Google CTF 2016: Spotted Quoll
John Hammond
30 Google CTF 2016: Can you Repo It?
Google CTF 2016: Can you Repo It?
John Hammond
31 Google CTF 2016: No Big Deal
Google CTF 2016: No Big Deal
John Hammond
32 Google CTF 2016: In Recorded Conversation
Google CTF 2016: In Recorded Conversation
John Hammond
33 Homemade CTF Challenge: 01 "Orchestra"
Homemade CTF Challenge: 01 "Orchestra"
John Hammond
34 Homemade CTF Challenge: 02 "Bae's Base"
Homemade CTF Challenge: 02 "Bae's Base"
John Hammond
35 Homemade CTF Challenge: 03 "Web Hunt"
Homemade CTF Challenge: 03 "Web Hunt"
John Hammond
36 Homemade CTF Challenge: 04 "UPX"
Homemade CTF Challenge: 04 "UPX"
John Hammond
37 Homemade CTF Challenge: 05 "The Assumption Song"
Homemade CTF Challenge: 05 "The Assumption Song"
John Hammond
38 Homemade CTF Challenge: 06 "A Brisk Stroll"
Homemade CTF Challenge: 06 "A Brisk Stroll"
John Hammond
39 Homemade CTF Challenge: 06 "I lost my password!"
Homemade CTF Challenge: 06 "I lost my password!"
John Hammond
40 web25 :: Mr. Robot : EKOPARTY CTF 2016
web25 :: Mr. Robot : EKOPARTY CTF 2016
John Hammond
41 web50 : RFC 7230 :: EKOPARTY CTF 2016
web50 : RFC 7230 :: EKOPARTY CTF 2016
John Hammond
42 misc50 : Hidden inside EKO :: EKOPARTY CTF 2016
misc50 : Hidden inside EKO :: EKOPARTY CTF 2016
John Hammond
43 Hack The Vote 2016 CTF: Sander's Fan Club [web100]
Hack The Vote 2016 CTF: Sander's Fan Club [web100]
John Hammond
44 Hack The Vote 2016 CTF Warpspeed [forensics150]
Hack The Vote 2016 CTF Warpspeed [forensics150]
John Hammond
45 Juniors CTF 2016 :: Black Suprematic Square
Juniors CTF 2016 :: Black Suprematic Square
John Hammond
46 Juniors CTF 2016 :: Six Strange Tales
Juniors CTF 2016 :: Six Strange Tales
John Hammond
47 Juniors CTF 2016 :: Lost Code
Juniors CTF 2016 :: Lost Code
John Hammond
48 Juniors CTF 2016 :: Here Goes!
Juniors CTF 2016 :: Here Goes!
John Hammond
Juniors CTF 2016 :: Southern Cross
Juniors CTF 2016 :: Southern Cross
John Hammond
50 Juniors CTF 2016 :: Clone Attack
Juniors CTF 2016 :: Clone Attack
John Hammond
51 Juniors CTF 2016 :: Dirty Repo
Juniors CTF 2016 :: Dirty Repo
John Hammond
52 Juniors CTF 2016 :: Hackers Blog
Juniors CTF 2016 :: Hackers Blog
John Hammond
53 Juniors CTF 2016 :: Voting!!!
Juniors CTF 2016 :: Voting!!!
John Hammond
54 Juniors CTF 2016 :: The Good, The Bad and The Junkman
Juniors CTF 2016 :: The Good, The Bad and The Junkman
John Hammond
55 Juniors CTF 2016 :: Stop Thief!
Juniors CTF 2016 :: Stop Thief!
John Hammond
56 Juniors CTF 2016 :: ROFL
Juniors CTF 2016 :: ROFL
John Hammond
57 Juniors CTF 2016 :: Restriced Area
Juniors CTF 2016 :: Restriced Area
John Hammond
58 Juniors CTF 2016 :: Oh SSH!
Juniors CTF 2016 :: Oh SSH!
John Hammond
59 HackCon CTF 2017 TRIVIA and BONUS Challenges
HackCon CTF 2017 TRIVIA and BONUS Challenges
John Hammond
60 HackCon CTF 2017 "Bacche" Challenges
HackCon CTF 2017 "Bacche" Challenges
John Hammond

Related AI Lessons

Security Belongs on the Blueprint
Integrate security into building design to mitigate physical and cyber risks
Medium · Cybersecurity
The Digital Gateway to Arabic Cybersecurity
Learn about the importance of language-specific cybersecurity solutions, particularly for Arabic-speaking regions, and how they can enhance digital security
Medium · Cybersecurity
Cybersecurity vs Cloud Computing – Which Career Will Dominate 2026? ☁️
Learn which IT career, cybersecurity or cloud computing, will dominate in 2026 and why it matters for your career choices
Medium · Cybersecurity
Claude Code Is Steganographically Marking Requests
Claude Code is embedding hidden markers in HTTP requests, potentially leaking sensitive data, and learn how to detect and mitigate this issue
Dev.to AI
Up next
You Think Your Card Declined by Mistake? It Might Be a 2026 Scam
Tolulope Michael
Watch →